CNNVD-202601-3036 Information

CNNVD ID

CNNVD-202601-3036

CVE-2025-55251

  • CNNVD Published: 2026-01-19

Description (Chinese)

HCL AION是印度HCL公司的一款AI生命周期管理平台。 HCL AION存在安全漏洞,该漏洞源于无限制的文件上传,可能导致恶意文件上传,造成未经授权的代码执行或系统破坏。

Description (English)

HCL AION is an AI life-cycle management platform for HCL India. HCL AION has a security loophole, which stems from unrestricted document uploading, which may lead to malicious document uploading, unauthorized code enforcement or system damage.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

HCL

Published

2026-01-19

Last Modified

2026-02-24

References

https://support.hcl-software.com/kb_view.do?sys_kb_id=4b92474633de7ad4159a05273e5c7b4b&searchTerm=kb0127995# https://access.redhat.com/security/cve/cve-2025-55251

Patch

https://www.hcl-software.com/aion

Share on: